Hot!Fortigate FG60D two WAN VIPs on WAN2

Author
DanieZ
New Member
  • Total Posts : 11
  • Scores: 0
  • Reward points: 0
  • Joined: 2018/09/03 01:10:39
  • Status: offline
2018/09/24 23:50:22 (permalink)
0

Fortigate FG60D two WAN VIPs on WAN2

Hello everybody.
There is such a problem, I need to do VIPs from WAN2 to one of the PC in guest network.
VIPs for mail server on WAN1 work`s fine, but when I make another VIP on WAN2 it`s not work.
 
( Lan) interface Port 1 : 172.16.1.1/24
( Guest_Lan )Interface: Port2 : 10.10.10.1/24
                       WAN1 :100.100.100.1/29
                       WAN2 :100.200.200.1/29
 
Static routes:
                       WAN1 :100.100.100.1/29 distance 10
                       WAN2 :100.200.200.1/29 distance 20
Routing policy
(guest lan) routed from Port2: 10.10.10.1/24 to WAN2 :  100.200.200.1/29
 
Ipv4 Policy : 
Incoming interface : WAN2
Destination Interface :Guest-Lan
Sourse Subnet :All
Destination Subnet :VIPs
Set Service :All
Set action :Allow 
Nat :Disabled
 
What I miss?
#1

3 Replies Related Threads

    Sudarsan Babu
    Bronze Member
    • Total Posts : 45
    • Scores: 2
    • Reward points: 0
    • Joined: 2017/04/24 03:18:50
    • Location: INDIA
    • Status: offline
    Re: Fortigate FG60D two WAN VIPs on WAN2 2018/09/25 00:13:44 (permalink)
    0
    Hi,
     
    Kindly to do below steps:
     
    Change WAN2 distance as 10 . 
    So WAN2 will be active routing table. Now traffic will be flow. 
     

    Regards,
    Sudarsan Babu P
    #2
    Toshi Esumi
    Expert Member
    • Total Posts : 1170
    • Scores: 66
    • Reward points: 0
    • Joined: 2014/11/06 09:56:42
    • Status: offline
    Re: Fortigate FG60D two WAN VIPs on WAN2 2018/09/25 11:15:21 (permalink)
    0
    If you want use wan1 for the rest, you can set priority like 10 (lower priority) on wan2 side.  The default value is 0 (on wan1) so it's preferred for outgoing traffic (sessions).
    #3
    DanieZ
    New Member
    • Total Posts : 11
    • Scores: 0
    • Reward points: 0
    • Joined: 2018/09/03 01:10:39
    • Status: offline
    Re: Fortigate FG60D two WAN VIPs on WAN2 2018/10/11 01:53:45 (permalink)
    0
    Thanks for answers.
    Put the same distance on both WAN interfaces, created for WAN1 police routes.
    After that, everything worked.
    #4
    Jump to:
    © 2018 APG vNext Commercial Version 5.5